Table 101 Firewall Rule Edit - ZyXEL Communications ZyWALL 1050 User Manual

Hide thumbs Also See for ZyWALL 1050:
Table of Contents

Advertisement

ZyWALL 1050 User's Guide
The following table describes the labels in this screen.

Table 101 Firewall Rule Edit

LABEL
Enable
From
To
Description
Schedule
User
Source
Destination
Service
Access
Log
OK
Cancel
316
DESCRIPTION
Select this check box to activate the firewall rule.
For through-ZyWALL rules, these are read-only and display the direction of travel
of packets to which the rule applies.
If you select Through-ZyWALL rules and All rules in the previous screen, these
fields display any. That means the firewall rule applies to packets traveling
between any two networks.
For to-ZyWALL rules, select from which zone the packets are allowed or blocked.
any means all interfaces or VPN tunnels.
The To field is read-only and displays ZyWALL. It means the rules are only applied
to the packets sent to the ZyWALL itself.
Enter a descriptive name of up to 60 printable ASCII characters for the firewall rule.
Spaces are allowed.
Select a schedule from the drop-down list box to have the rule active at the
scheduled times. Otherwise, select none and the rule is always effective.
This field is not available when you are configuring a to-ZyWALL rule.
Select a user name or user group name from the drop-down list box. The firewall
rule is activated only when the specified user logs into the system and the rule will
be disabled when the user logs out.
Otherwise, select any and there is no need for user logging.
Note: If you specified a source IP address (group) instead of any in
the field below, the user's IP address should be within the IP
address range.
Select a source IP address (group) object.
Select a destination IP address (group) object.
Select a service from the drop-down list box. Please see the chapter about the
Object > Service screen for more information on services available.
Use the drop-down list box to select what the firewall is to do with packets that
match this rule.
Select deny to silently discard the packets without sending a TCP reset packet or
an ICMP destination-unreachable message to the sender.
Select reject to deny the packets and send a TCP reset packet to the sender. Any
UDP packets are dropped without sending a response packet.
Select allow to permit the passage of the packets.
Select whether to have the ZyWALL generate a log (log), log and alert (log alert)
or not (no) when the rule is matched.
Click OK to save your customized settings and exit this screen.
Click Cancel to exit this screen without saving.
Chapter 19 Firewall

Advertisement

Table of Contents
loading

Table of Contents